• DocumentCode
    606760
  • Title

    Towards a secure electricity grid

  • Author

    Burmester, Mike ; Lawrence, J. ; Guidry, D. ; Easton, S. ; Ty, S. ; Xiuwen Liu ; Xin Yuan ; Jenkins, J.

  • Author_Institution
    Dept. of Comput. Sci., Florida State Univ., Tallahassee, FL, USA
  • fYear
    2013
  • fDate
    2-5 April 2013
  • Firstpage
    374
  • Lastpage
    379
  • Abstract
    The transmission of bulk power within a zone of an interconnected region of an electricity grid is controlled by substation automation systems. The substations are where electricity is routed throughout the grid, as well as the control and communication nodes of the network grid. It is crucial for the security of the electricity grid that there should be no break in the network communication. Currently, IEC 61850 specifies the communication interface and gives utility companies interoperability for Intelligent Electronic Devices of substation automation systems and is intended to support Distributed Wide Area Monitoring, Control and Protection. This requires ultra real-time data feeds that must be trusted. Currently there is no agreed upon security standard that accompanies IEC 61850. In this paper we propose a framework architecture that extends IEC 61850 to capture trusted substation automation by combining (i) Trusted Computing engines, (ii) a Kerberos multicast authentication service, and (iii) a real-time attribute-based access control system. We then integrate this framework into an open source IEC 61850 profiler (a real-time emulator) for substation automation recently released by SISCO, and show that the integrated profiler is IEC 61850 compliant, while supporting integrity, confidentiality and real-time availability (with end-to-end time for critical data feeds less than 4ms), against strong adversaries (including insiders).
  • Keywords
    IEC standards; power grids; power system security; power transmission protection; substation automation; Kerberos multicast authentication service; SISCO; bulk power transmission; communication nodes; data feeds; distributed wide area monitoring; intelligent electronic devices; interconnected region; network communication; network grid; open source IEC 61850 profiler; real-time attribute-based access control system; real-time availability; real-time emulator; secure electricity grid; security standard; substation automation systems; trusted computing engines; Authentication; Availability; Engines; IEC standards; Real-time systems;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Intelligent Sensors, Sensor Networks and Information Processing, 2013 IEEE Eighth International Conference on
  • Conference_Location
    Melbourne, VIC
  • Print_ISBN
    978-1-4673-5499-8
  • Type

    conf

  • DOI
    10.1109/ISSNIP.2013.6529819
  • Filename
    6529819